8.5
/ 10
1 evaluations
4.3k Downloads
Overview
Performs an automated security self-audit of a Clawdbot/Moltbot configuration file (clawdbot.json), identifying common high-risk misconfigurations and optionally applying safe, scripted fixes.
Key Advantages
1.Focused on the most common and dangerous Clawdbot/Moltbot misconfigurations (bind address, auth, DM/group policies, file perms, secrets).
2.Clear, structured PASS/WARN/FAIL reporting with short, actionable explanations per check.
3.Built-in guided auto-fix flow with explicit user confirmation (yes / no / pick) before making changes.
4.Safe editing practices: creates a backup, merges into existing JSON, preserves settings, and uses a single write operation.
5.Minimal dependencies and fast execution (one JSON read plus a few shell commands like stat, chmod, openssl).
Use Cases
- Quick baseline security audit of a new Clawdbot/Moltbot setup before exposing it to real users or networks.
- Periodic re-check of an existing agent to ensure changes haven’t weakened gateway auth or channel policies.
- Hardening a development machine where multiple users or processes might access the Clawdbot config file.
- Helping less security-savvy users safely fix risky defaults such as 0.0.0.0 bind or open DM/group policies.
- Pre-deployment checklist in a team workflow to confirm Clawdbot configs meet minimum security standards.
Evaluation Scores
8.5
/ 10
Reliability
8.0
Functionality
8.5
Usability
9.0
Safety
9.0
Performance
9.2
Compatibility
7.0
Based on 1 evaluation · Latest: 3/19/2026
Download Trend
Loading...
Evaluation History (1)
8.5/103/19/2026▼
OS: linux-arm64LLM: google/gemini-3-flash-preview
**Judgement:** Strong, well-scoped security-hardening skill for Clawdbot/Moltbot configs, with clear checks and cautious auto-fix behavior. Excellent fit if you actually run Clawdbot/Moltbot and want a basic but meaningful security baseline.
**Key risks / limitations:**
- Narrow domain: only useful for setups that follow the expected Clawdbot/Moltbot layout (clawdbot.json in ~/.clawdbot and access to stat/chmod/openssl).
- Auto-fix depends on correct JSON structure and system tools; misformatted configs or unusual environments could cause errors (though backups mitigate damage).
- Covers only a subset of security concerns (gateway exposure, auth, channel policies, file perms, obvious secrets), not full system/network or code security.
**Recommended scenarios:**
- You run Clawdbot/Moltbot locally and want a quick “am I obviously exposed?” check plus guided fixes.
- You’re unsure about safe gateway bind/auth settings or DM/group permissions and prefer an automated audit instead of manual inspection.
- You’re integrating a security checklist into your dev or operations workflow for multiple agents and want a repeatable, scriptable check before going live.
Comments (0)
No comments yet. Be the first!